AnsweredAssumed Answered

Explicit NAT HIDE in R80?

Question asked by Hugo van der Kooij on Jul 11, 2018
Latest reply on Dec 4, 2018 by Duane Toler

Untill R77.30 we used an object with IP address 0.0.0.0 to use in specific NAT rules to hide traffic behind the gateway. This works in my lab as with R80.10 but wether or not this is the best way to handle things is a bit unclear.

This is import as one may need create creative rules to handle multiple ISP lines either with or without ISP redundancy in place.

 

Has anyone worked out another solution that works in R80(.10)?

 

I have tested this with:

 

This works as I get another address on https://www.whatismyip.com/ when I enable the rule before my Static NAT that is used on this host.

 

I am aware of sk40637 (Using a "Hide behind IP address 0.0.0.0" as the translated source object) but I find the text rather ambigious. And sk119998 (Network object with network address 0.0.0.0 is not enforced) seems to indicate this might be a bug. Then there is sk25152 (Static NAT fails for outgoing connections through gateway with ISP Redundancy in Load Sharing mode) but I am using a HIDE NAT. 

 

So it works but I unsure if this will be supported in future version.

Outcomes